Privacy Policy
PRIVACY POLICY
PRIVACY NOTICE PURSUANT TO ARTICLES 13 AND 14 OF REGULATION (EU) 2016/679 - MARALPS
With this document ("Notice"), the Data Controller, as defined below, wishes to inform you about the purposes and methods of processing your personal data and the rights recognized to you by Regulation (EU) 2016/679 concerning the protection of individuals with regard to the processing of personal data and their free movement ("GDPR"). This Notice may be supplemented by the Data Controller if any additional services requested by you involve further processing.
1. DATA CONTROLLER AND DATA PROCESSING OFFICER (DPO)
The Data Controller is Maralps di Maurizio Marcotto, VAT / CF: 03028650210, located at Via Città Nuova | Neustadt St, 45/A - Vipiteno | Sterzig - I-39049 (BZ), Italy.
The Data Controller and the DPO, also through designated structures, will handle your request and provide you, without undue delay and in any case, no later than one month from receipt of the request, with information regarding the action taken concerning your request.
Please note that if the Data Controller has doubts about the identity of the individual making the request, they may request additional information necessary to confirm the data subject's identity.
Categories of Data Subjects: Individuals, legal entities, public and private organizations.
2. PROCESSING
2.1. Contract Performance - Use of the Service
PROCESSING: USE OF THE SERVICE - MARALPS CUSTOMERS
The processing of your personal data is necessary for acquiring preliminary information before concluding contracts with the Data Controller, for the perfection and execution of the contract involving the provision of services on the Maralps.it website.
Purpose of processing:
| Legal Basis for Processing | Purpose | Description |
| Contracts Execution | Contractual agreements with the Maralps.it platform. | Contractual agreements with the Maralps.it platform. |
Nature of Data Provision: Mandatory.
Consequences of Refusal to Provide Data: Failure to provide the required data will result in the company being unable to proceed with your pre-contractual/contractual requests and fulfill the contract.
Minimum Data Protection Measures: At the computer level, suitable measures are adopted, including the use of unique access credentials to assets, antivirus measures, and firewalls aimed at ensuring a high standard of protection.
Retention Period for Personal Data: Your personal data will be actively processed for the time necessary for managing the existing relationship and/or executing the contract. Information collected for the evaluation of contract conclusion, in case of non-completion, will be deleted within 10 years or within 30 days upon the data subject's request.
Recipients of the Processing:
The Data Controller is Maralps di Maurizio Marcotto, VAT / CF: 03028650210, located at Via Città Nuova | Neustadt, 45/A - Vipiteno | Sterzig - I-39049 (BZ), Italy.
Couriers and Shipping Companies responsible for product delivery: FedEx Srl and TNT Srl, R.E.A. MI-1117215 - Business Register Milan, VAT: 01273040129, with registered office at Praxis Business Park | Strada Padana Superiore, 2/B - 20063, Cernusco sul Naviglio (MI), Italy.
Type of processed Data:
| Cathegory: | Type: |
| Common Data | Personal Data |
| Common Data | Pseudo-anonymous Data |
Scope of Disclosure: Buyer data will be transmitted to Partner Stores for the effective provision of the service. At the same time, buyer data (including address and phone number) will be shared with couriers responsible for delivering the goods.
Information about minors: Yes
2.2. Marketing
Processing: WEB - COMMERCIAL NEWSLETTERS
If you wish to stay updated on the latest product and service news from the Data Controller or third-party companies, you can subscribe to our marketing initiatives, allowing the Data Controller to send you newsletters and additional commercial communications.
Purpose of processing:
| Legal Basis | Purpose | Description |
| Consent | Consent to receiving commercial communications. | Consent to receiving commercial communications. |
Nature of Data Provision:
Optional. Consequences of Refusal to Provide Data: The failure to provide data will not affect the satisfaction of your requests and the use of web services but will result in the Data Controller being unable to send you commercial communications.
Minimum Data Protection Measures: At the computer level, suitable measures are adopted, including the use of unique access credentials to assets, antivirus measures, and firewalls aimed at ensuring a high standard of protection.
Retention Period for Personal Data: Your personal data will be actively processed for the time necessary for managing the existing relationship and/or executing the contract. Information collected for the evaluation of contract conclusion, in case of non-completion, will be deleted within 30 days upon the data subject's request.
Recipients of the Processing:
The Data Controller is Maralps di Maurizio Marcotto, VAT / CF: 03028650210, located at Via Città Nuova | Neustadt, 45/A - Vipiteno | Sterzig - I-39049 (BZ), Italy.
Types of Processed Data:
| Cathegory | Type |
| Common Data | Personal Data |
| Common Data | Pseudo-Anonymous Data |
3. COOKIE INFORMATION:
3.1. Extended Cookie Information:
On this site, we use technologies to collect information to enhance your online experience. This policy pertains to the use of cookies and the methods for managing them.
We reserve the right to modify this policy at any time. Any changes to this policy will take effect from the date of publication on the site.
Cookies are small text strings that websites visited by the user send to their terminal (usually the browser), where they are stored to be transmitted back to the same sites upon the user's next visit.
During navigation on a site, the user may also receive cookies on their terminal sent by different sites or web servers (so-called "third parties"), on which certain elements may reside (such as images, maps, sounds, specific links to pages of other domains) present on the site being visited.
Cookies, usually present in users' browsers in a very large number and sometimes with characteristics of extensive temporal persistence, are used for various purposes: performing computer authentications, monitoring sessions, storing information on specific configurations regarding users accessing the server, etc.
To regulate these devices correctly, it is necessary to distinguish them because there are no technical characteristics that differentiate them based on the purposes pursued by those who use them.
- First-Party Cookies, Technical (Session) Persistent: Technical cookies are used solely for "the transmission of a communication over an electronic communications network or, to the extent strictly necessary, to the provider of a WEB service explicitly requested by the user to provide that service." They are not used for additional purposes and are normally installed directly by the website owner or operator. They can be divided into navigation or session cookies, which ensure the normal navigation and use of the website (allowing, for example, the completion of a purchase or authentication to access restricted areas). This site uses first-party persistent session technical cookies.
- First-Party Cookies, Analytical: Analytical cookies, also known as "analytics," allow detailed statistics to be compiled about visitors to a website, such as the display of specific pages, the number of visitors, the time spent on the site by users, and the ways of arrival. Analytical cookies are assimilated to technical cookies when used directly by the site manager to collect aggregated information about the number of users and how they visit the site. This site uses first-party analytical cookies.
- First-Party Cookies, Profiling: Profiling cookies aim to create user profiles and are used to send advertising messages in line with the preferences expressed by the user during web browsing. Due to the particular invasiveness that such devices can have in the private sphere of users, European and Italian regulations allow you to deny consent to the use of such cookies. This site uses first-party profiling cookies.
- Third-Party Cookies, Analytical: Analytical cookies, also known as "analytics," allow detailed statistics to be compiled about visitors to a website, such as the display of specific pages, the number of visitors, the time spent on the site by users, and the ways of arrival. This site uses a web analytics service provided by Google.
- Third-Party Cookies, Profiling: To provide you with additional features and services within this site, we work with third parties that, independently and not directly controlled by us, may use their cookies to collect information about your activities while browsing the pages of this site. This information may be used to show you advertisements in line with your interests, based on the content you have visited, or to measure the effectiveness of advertising campaigns. These cookies may be contained in various elements within the web page, such as advertising banners, images, videos, etc. An example is the presence of the so-called "social plugins" or "social sharing buttons" of the main social networks (Facebook, Twitter, Google+, and LinkedIn), aimed at sharing the contents of the web page on those social networks. The use of data collected through third-party cookies, over which we have no control, is governed by their respective policies, to which we ask you to refer. This site uses third-party profiling cookies.
Cookie Management:
Here is a list of the most common browsers with links to cookie management settings:
- Internet Explorer 8 and above;
- Safari 2 or above;
- Opera 10.5 and above;
- Firefox 3.5 and above;
- Google Chrome 10 and above.
Browsers provide "private browsing" mode, enabling which will delete cookies after each browsing session.
Secondly, you can disable third-party profiling cookies by visiting http://www.youronlinechoices.com.
You can also disable Google Analytics analysis cookies by downloading the specific browser add-on for disabling Google Analytics at the following web address: https://tools.google.com/dlpage/gaoptout.
Third-Party Cookie Policies:
Facebook Cookie Policy https://it-it.facebook.com/policies/cookies/
Google Cookie Policy https://www.google.it/intl/it/policies/technologies/cookies/
LinkedIn Cookie Policy https://www.linkedin.com/legal/cookie-policy
Twitter Cookie Policy https://twitter.com/it/privacy
Granting Consent for Cookie Use:
By continuing to browse from the banner containing the so-called short information, scrolling through this page, or clicking on any of its elements, you grant the use of cookies used on this website, accepting the cookie policy described above.
You can always revoke the consent previously given through the methods indicated in the section titled "COOKIE MANAGEMENT."
3.2. Site Cookies: To view all cookies used on this site, click on [this link](https://webcookies.org/scan/17504705).
3.3. Types of Cookies Active on the Site:
| Cookie Type |
| Third-Party analytical cookies with IP address anonymization and/or reduced cookie usage for user data cross-referencing. |
| Technical - session - first-party persistent cookies. |
4. YOUR RIGHTS AS A DATA SUBJECT:
In relation to the treatments described in this Privacy Notice, as a data subject, you may, as provided by European Regulation 679/2016, exercise the rights established by articles 15 to 21, including:
- Right of access – Article 15 GDPR: The right to confirm whether or not personal data concerning you is being processed and, if so, obtain access to your personal data, including a copy of it.
- Right to rectification – Article 16 GDPR: The right to obtain the rectification of inaccurate personal data concerning you without undue delay and the right to have incomplete personal data completed.
- Right to erasure (right to be forgotten) – Article 17 GDPR: The right to obtain the erasure of personal data concerning you without undue delay.
- Right to restriction of processing – Article 18 GDPR: The right to obtain restriction of processing where:
- the accuracy of the personal data is contested;
- the processing is unlawful, and you oppose the erasure of personal data and request the restriction of their use instead;
- the personal data are needed for the establishment, exercise, or defense of legal claims;
- you have objected to processing pending verification of whether the legitimate grounds of the controller override yours.
- Right to data portability – Article 20 GDPR: The right to receive your personal data in a structured, commonly used, and machine-readable format and to transmit those data to another controller without hindrance, where processing is based on consent and is carried out by automated means. Also, the right to have your personal data transmitted directly by the Bank to another controller where technically feasible.
- Right to object – Article 21 GDPR: The right to object, at any time, for reasons related to your particular situation, to the processing of personal data concerning you based on the legitimate interest or the performance of a task carried out in the public interest or the exercise of official authority, including profiling unless the controller demonstrates compelling legitimate grounds for the processing which override your interests, rights, and freedoms or for the establishment, exercise, or defense of legal claims. You can object at any time to the processing of personal data for direct marketing purposes, including profiling.
These rights can be exercised by contacting the Data Controller at the contact details provided above.
The exercise of your rights as a data subject is free under Article 12 GDPR. However, in the case of requests that are manifestly unfounded or excessive, especially due to their repetitiveness, the Controller may either charge a reasonable fee, taking into account the administrative costs incurred to handle your request, or refuse to act on the request.
RIGHT OF WITHDRAWAL:
The data subject has the right to withdraw their consent at any time. The withdrawal of consent does not affect the lawfulness of processing based on consent before its withdrawal.
RIGHT TO LODGE A COMPLAINT:
The data subject has the right to lodge a complaint with the supervisory authority for the protection of personal data, Autorità Garante per la protezione dei dati personali, Piazza di Montecitorio n. 121, 00186, Rome (RM).
By accepting this, I declare that I have received information from the Data Controller regarding the use of my personal data and consent, according to privacy regulations, to the processing of special categories of personal data provided by me for the performance of activities necessary for the activation and management of relationships, operations, and services requested by me.